GitHub 红队武器库🚨
14.2K subscribers
26 photos
10 videos
27K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: crackweb
👤 项目作者: guaidao2
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:10:46

📝 项目描述:
现代化的高性能web漏洞扫描工具。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-fingerprint-bridge
👤 项目作者: ParthShethia25
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:27:38

📝 项目描述:
Importable Burp extension for selected-host browser TLS transport

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin #Extension

📦 项目名称: burp-fake-useragent
👤 项目作者: MiraclePeformer
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:16:52

📝 项目描述:
Burp Suite extension with an ON/OFF switch that rewrites the User-Agent header on Proxy requests — Random (new fake UA per request) or Fixed (pick a preset UA). Jython.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: Malware_Analysis_Lab
👤 项目作者: Varunpoojari
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:07:02

📝 项目描述:
A Python-based malware analysis toolkit for static analysis of suspicious files.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-34990-POC
👤 项目作者: OffensiveBias20
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 12:25:55

📝 项目描述:
Technical analysis and proof-of-concept research for CVE-2026-34990, a local privilege-escalation vulnerability affecting CUPS. This repository documents the vulnerability mechanics, CUPS/IPP request flow, authentication-token disclosure, the localhost callback technique, and the subsequent privilege-escalation primitive.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-34990-POC
👤 项目作者: offesivezapper
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 12:19:12

📝 项目描述:
Technical analysis and proof-of-concept research for CVE-2026-34990, a local privilege-escalation vulnerability affecting CUPS. This repository documents the vulnerability mechanics, CUPS/IPP request flow, authentication-token disclosure, the localhost callback technique, and the subsequent privilege-escalation primitive.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: yara-rules
👤 项目作者: ArtfulDodger10
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 13:03:43

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: u3000py
👤 项目作者: turretsec
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 13:31:16

📝 项目描述:
Python client for the Thinkware U3000 dashcam's local WiFi control protocol, reverse-engineered from the official Android app. PoC tooling behind CVE-2026-101053, CVE-2026-101054, and CVE-2026-101055.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-18110-PoC
👤 项目作者: flenz00
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 13:29:59

📝 项目描述:
Proof-of-Concept for CVE-2026-18110

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Docker #EXP

📦 项目名称: Swift-1.5-TensorFold-Single-DGX-Spark
👤 项目作者: tournierjc
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 14:02:12

📝 项目描述:
Swift 1.5 (Qwen3.8-Flash-Next 120B, NVFP4) on one DGX Spark with TensorFold: a Docker test rig for the nvfp4-flash-next branch

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #DOM

📦 项目名称: Lab-Stored-DOM-XSS
👤 项目作者: gabrielhusa0-hash
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 14:49:53

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: zucchetti-hr-portal-reflected-xss
👤 项目作者: gerico-lab
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 14:31:24

📝 项目描述:
A Reflected Cross-Site Scripting exists in Zucchetti HRPortal sw release 26.01.00

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: NOSQLi-Burp-extension
👤 项目作者: 0xsl4m
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 14:45:36

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #越权 #IDOR

📦 项目名称: yueluo-idor-pro
👤 项目作者: 2561769445
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 15:00:51

📝 项目描述:
月落 · 多账号越权(IDOR)自动化检测平台 | Multi-account Broken Access Control Testing

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: awesome-iocs
👤 项目作者: sroberts
🛠 开发语言: Shell
⭐ Star数量: 1007 | 🍴 Fork数量: 126
📅 更新时间: 2026-09-28 15:06:16

📝 项目描述:
Curated sources of indicators of compromise, detection signatures and IOC tools.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: RootMyVivo-Exploit
👤 项目作者: L-1124
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 15:22:23

📝 项目描述:
Hardened CVE-2026-43499 (GhostLock futex PI UAF) injection payload source tree for vivo and iQOO devices

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-38526
👤 项目作者: Harry178945
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 15:14:29

📝 项目描述:
CVE-2026-38526 - Authenticated RCE exploit for Krayin CRM <= 2.2.x. Upload arbitrary PHP via /admin/tinymce/upload and gain remote code execution. Python PoC for security researchers, CTF players and bug bounty hunters. Tested on HTB Nexus.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: Learn-SecByte-Venus-Rips-Recon-PHP-CVE-CTF-Labs
👤 项目作者: sifatnotes
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 15:22:02

📝 项目描述:
Hands-on Learn SecByte CTF labs covering Venus reconnaissance, service discovery, cookies, PHP investigation, secrets, root-focused challenges, and CVE-2020-28707 Stockdio Historical Chart XSS.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: threatscan
👤 项目作者: FaheemRafiq
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 15:54:40

📝 项目描述:
Blockchain C2 Config-Injection Malware Detector — Cross-platform scanner with GitHub Actions CI

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: Learn-SecByte-Webmin-Rips-SSH-Secrets-CTF-Labs
👤 项目作者: sifatnotes
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 15:26:44

📝 项目描述:
Hands-on Learn SecByte CTF labs covering Webmin security, RCE, reconnaissance, logs, file discovery, SSH keys, secrets, stack investigation, and Rips-themed cybersecurity challenges.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Simple-Vulnerability-scanner
👤 项目作者: pavanok6-eng
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 15:51:10

📝 项目描述:
A simple vulnerability scanner is an automated security tool that checks your systems, networks, or applications for known flaws, missing patches, and misconfigurations.

🔗 点击访问项目地址